sre/params.php in the Integrity Clientless Security (ICS) component in Check Point Connectra NGX R62 3.x and earlier before Security Hotfix 5, and possibly VPN-1 NGX R62, allows remote attackers to bypass security requirements via a crafted Report parameter, which returns a valid ICSCookie authentication token.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-01-24T01:00:00
Updated: 2024-08-07T12:19:30.159Z
Reserved: 2007-01-23T00:00:00
Link: CVE-2007-0471
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-01-24T01:28:00.000
Modified: 2024-11-21T00:25:56.917
Link: CVE-2007-0471
Redhat
No data.